Zephyrus CMS - 'index.php' SQL Injection

EDB-ID:

11850

CVE:

N/A

Author:

Phenom

Type:

webapps

Platform:

PHP

Published:

2010-03-23

====================================================
Zephyrus CMS (index.php) SQL Injection Vulnerability
====================================================


[+] Discovered by: Phenom
[+] My id: http://inj3ct0r.com/author/2157
[+] Original: http://inj3ct0r.com/exploits/11409

#[Exploit Title] : CMS Zephyrus (index.php) SQL Injection Vulnerability

[Author] = Phenom

[CMS]   = CMS Zephyrus

[Dork] = I hate script kiddies

[Date] = 2010-03-23

#[Exploit] :

[Bug] = [index.php?pagina=news&id=]

[Usage] = http://www.site/index.php?pagina=news&id=[SQL Injection]

[Login] = http://site/index_priv.php

#[Thanks] :

[+] all Inj3ct0r Members



# Inj3ct0r.com [2010-03-23]